Vulnerability Description
SEPPmail Secure Email Gateway before version 15.0.4 insecurely deserializes untrusted data, which can be reached from the new GINA UI and may allow unauthenticated remote attackers to execute code via a crafted serialized object.
Related Weaknesses (CWE)
References
- https://downloads.seppmail.com/extrelnotes/150/ERN15.0.html#security
- https://labs.infoguard.ch/posts/seppmail_secure_e-mail_gateway_rce_vulnerabiliti
FAQ
What is CVE-2026-44126?
CVE-2026-44126 is a documented vulnerability. SEPPmail Secure Email Gateway before version 15.0.4 insecurely deserializes untrusted data, which can be reached from the new GINA UI and may allow unauthenticated remote attackers to execute code via...
How severe is CVE-2026-44126?
CVSS scoring is not yet available for CVE-2026-44126. Check NVD for updates.
Is there a patch for CVE-2026-44126?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.